Senior DevSecOps Engineer

Steampunk Inc — United States · Posted ~4 hours ago

Senior Full-time

Skills

DevSecOps CI/CD security automation infrastructure as code cloud security SAST DAST SCA Infrastructure as Code MLOps

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A technology advisory organization is seeking a senior DevSecOps engineer to build secure automation pipelines and governance tooling. The role focuses on compliance checks, security scanning, infrastructure automation, and secure delivery processes.

Highlights

Senior security engineering role focused on automation, compliance, and secure software delivery practices.

Description

Steampunk is seeking a Senior DevSecOps Engineer to build governance-gate automation and pipeline tooling supporting AI oversight and program reporting for a large federal advisory program. Contributions Coordinate MLOps-style governance gates with pilot graduation criteria and enterprise readiness standards, embedding compliance checks into delivery flow Support automated maintenance of the AI Use Case Inventory, Risk Heatmap, and Mandate Compliance Matrix, with human review of all automated outputs Coordinate technical review board and FISMA categorization timing within the AI governance pipeline Support technical safeguards protecting against unauthorized data access within AI tooling and pipelines Integrate automated security scanning (SAST/DAST/SCA) and compliance checks into CI/CD pipelines supporting program tooling Support infrastructure-as-code and environment automation for developed tools Support CI/CD and deployment automation for reporting and dashboard tooling built by the development team Qualifications Ability to obtain and maintain a U.S. government security clearance Bachelor's degree and 8+ years of total experience 5+ years of DevSecOps or automation engineering experience Demonstrated experience building pipeline governance/compliance gates Experience with CI/CD pipeline tools (e.g., Jenkins, GitLab CI/CD, GitHub Actions) Experience with infrastructure-as-code and cloud automation (e.g., Terraform, CloudFormation, Ansible) Experience integrating security scanning tools (SAST/DAST/SCA) into automated pipelines Experience with one or more cloud platforms (AWS, Azure, or GCP) Familiarity with FISMA categorization processes Preferred Experience with MLOps or AI-pipeline governance specifically Familiarity with NIST 800-53 or Risk Management Framework (RMF) processes Federal environment experience About Steampunk Steampunk relies on several factors to determine salary, including but not limited to geographic location, contractual requirements, education, knowledge, skills, competencies, and experience. The projected compensation range for this position is $150,000 to $185,000. The estimate displayed represents a typical annual salary range for this position. Annual salary is just one aspect of Steampunk’s total compensation package for employees. Learn more about additional Steampunk benefits here. Identity Statement As part of the application process, you are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud. Steampunk is a Change Agent in the Federal contracting industry, bringing new thinking to clients in the Homeland, Federal Civilian, Health and DoD sectors. Through our Human-Centered delivery methodology, we are fundamentally changing the expectations our Federal clients have for true shared accountability in solving their toughest mission challenges. If you want to learn more about our story, visit http://www.steampunk.com . We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law. Steampunk participates in the E-Verify program.